Tosun, Tolun and Moradi, Amir and Savaş, Erkay (2024) Exploiting the central reduction in lattice-based cryptography. IEEE Access, 12 . pp. 166814-166833. ISSN 2169-3536
Full text not available from this repository. (Request a copy)
Official URL: https://dx.doi.org/10.1109/ACCESS.2024.3494593
Abstract
This paper questions the side-channel security of central reduction technique, which is widely adapted in efficient implementations of Lattice-Based Cryptography (LBC).We show that the central reduction leads to a vulnerability by creating a strong dependency between the power consumption and the sign of sensitive intermediate values. We exploit this dependency by introducing the novel absolute value prediction function, which can be employed in higher-order non-profiled multi-query Side-Channel Analysis (SCA) attacks. Our results reveal that - compared to classical reduction algorithms - employing the central reduction scheme leads to a two-orders-of-magnitude decrease in the number of required SCA measurements to exploit secrets of masked implementations. We particularly show that our approach is valid for the prime moduli employed by Kyber and Dilithium, the lattice-based post-quantum algorithms selected by NIST.We practically evaluate our introduced approach by performing second-order non-profiled attacks against an open-source masked implementation of Kyber on an ARM Cortex-M4 micro-processor. In our experiments, we revealed the full secret key of the aforementioned masked implementation with only 250 power traces without any forms of profiling or choosing the ciphertexts.
Item Type: | Article |
---|---|
Uncontrolled Keywords: | Arithmetic Masking; Centered Reduction; Correlation Power Analysis; Dilithium; Kyber; Montgomery; Plantard; Post-Quantum Cryptography; Side-Channel Analysis |
Divisions: | Faculty of Engineering and Natural Sciences > Academic programs > Computer Science & Eng. Faculty of Engineering and Natural Sciences |
Depositing User: | Erkay Savaş |
Date Deposited: | 31 Jan 2025 11:57 |
Last Modified: | 31 Jan 2025 11:57 |
URI: | https://research.sabanciuniv.edu/id/eprint/50631 |